ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 318 - SCS-C01 discussion

Report
Export

A company has an existing AWS account and a set of critical resources hosted in that account. The employee who was in-charge of the root account has left the company. What must be now done to secure the account. Choose 3 answers from the options given below.

Please select:

A.
Change the access keys for all IAM users.
Answers
A.
Change the access keys for all IAM users.
B.
Delete all custom created IAM policies
Answers
B.
Delete all custom created IAM policies
C.
Delete the access keys for the root account
Answers
C.
Delete the access keys for the root account
D.
Confirm MFAtoa secure device
Answers
D.
Confirm MFAtoa secure device
E.
Change the password for the root account
Answers
E.
Change the password for the root account
F.
Change the password for all IAM users
Answers
F.
Change the password for all IAM users
Suggested answer: C, D, E

Explanation:

Now if the root account has a chance to be compromised, then you have to carry out the below steps 1. Delete the access keys for the root account 2. Confirm MFA to a secure device 3. Change the password for the root account This will ensure the employee who has left has no change to compromise the resources in AWS.

Option A is invalid because this would hamper the working of the current IAM users

Option B is invalid because this could hamper the current working of services in your AWS account

Option F is invalid because this would hamper the working of the current IAM users For more information on IAM root user, please visit the following URL:

https://docs.aws.amazon.com/IAM/latest/UserGuide/id root-user.html The correct answers are: Delete the access keys for the root account Confirm MFA to a secure device. Change the password for the root account

Submit Your Feedback/Queries to our Experts

asked 16/09/2024
Jeremiah Hutchins
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first